Chapter 7: Security Operations Domain 7 Practice Questions
Questions relating to the following topics are included in this domain:
- Understanding and complying with investigations
- Proper logging and monitoring activities
- Performing configuration management
- Applying fundamental security concepts
- Conducting resource protection and incident management
To pass the Certified Information Systems Security Professional (CISSP) exam, you must score highly in the Security Operations domain. Domain 7 has a 13% weighting on the exam and requires you to understand the differences between events, incidents, and disasters, and how to properly run an investigation. Also, it is important to understand logging and monitoring devices and activities.
A thorough understanding of mitigations to social engineering is also required; so, understanding where and when to use separation of duties (SoD), mandatory vacations, and job rotations is critical to passing the CISSP exam...